🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 baa1ef5bd5bd23d5aaccbe1122fdf3a11d3b3a994ea5ae7eed29f9cd4b8696f1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: baa1ef5bd5bd23d5aaccbe1122fdf3a11d3b3a994ea5ae7eed29f9cd4b8696f1
SHA3-384 hash: 24a08ddea4ca1b62a6e74f2d22b478cf76427fae99e0e27b4c7b359517b1e6d02d47eb7ea553f76364cc7a9873f24140
SHA1 hash: 40bc1da27bbc5571082809dff4baa087e8da8b6e
MD5 hash: a5f791a7ef2f0b5489fb24462decaf66
humanhash: delaware-fillet-sad-harry
File name:Copy-Docs521510_pdf.gz
Download: download sample
Signature Loki
File size:390'478 bytes
First seen:2020-04-07 13:33:50 UTC
Last seen:2020-04-07 19:11:55 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:olmL9N+CEERAQlJ6WBhG81GPf5SBB865KrWJ2rn9iyVaE/YwfwSP3UWz:4mL5FAQlUWBkjPGB865/2rn9iyHQawIt
TLSH C6842319262584CFB2E195B38013B937DD687B4F9EC1C0D4829EC2CF5DD2B1AE266D4D
Reporter jarumlus
Tags:Loki Lokibot

Intelligence


File Origin
# of uploads :
2
# of downloads :
1'383
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Bladabindi
Status:
Malicious
First seen:
2020-04-07 08:52:00 UTC
File Type:
Binary (Archive)
Extracted files:
76
AV detection:
26 of 47 (55.32%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments